TOIT Training

Intermediate

AWS Certified Security – Specialty

Overview
Curriculum

 

In this instructor-led course students will learn how to efficiently use AWS security services for optimal security and compliancy in the AWS cloud. This course focuses on the AWS-recommended best practices that you can implement to enhance the security of your data and systems in the cloud. The course highlights the security features of AWS key services including compute, storage, networking, and database services. This course also refers to the common security control objectives and regulatory compliance standards.

Curriculum

  • 8 Sections
  • 68 Lessons
  • 14h 20m Duration
Expand All
 Introduction to Amazon AWS Security
2 Lessons
  1. Amazon Security basics
  2. AWS Security and compliance
Associate Level Review
6 Lessons
  1. Global infrastructure review
  2. Elastic Compute Cloud (EC2)
  3. Lambda
  4. VPC review
  5. S3 review
  6. EC2 load balancers
Services Review
5 Lessons
  1. IAM review
  2. KMS
  3. CloudWatch, CloudTrail, and config
  4. Firewall
  5. More security and Identity Services
Incident Response
3 Lessons
  1. Incident Response
  2. Steps for installing Inspector Agent and SSM Agent
  3. Configuring alarms
Identity and Access Management
8 Lessons
  1. Policy evaluation order
  2. IAM users and rules
  3. Best practices for IAM users and account security
  4. Cross account access
  5. AWS organization
  6. SCP guard rails
  7. Account security status
  8. AWS cognito and web identity federation
Infrastructure Security
22 Lessons
  1. VPCs
  2. Setting up VPCs
  3. Network Access Control Lists (NACLs)
  4. VPC peering
  5. VPC endpoints
  6. VPC endpoint policies
  7. Systems manager setup
  8. AWS system manager patch management
  9. AWS system manager parameter store
  10. AWS system manager run command
  11. Amazon inspector
  12. AWS load balancers
  13. Security with AWS CloudFront
  14. AWS Trusted Advisor
  15. Web application firewall
  16. AWS Shield
  17. AWS Guard Duty
  18. Amazon Macie
  19. AWS Artifact
  20. AWS network firewall
  21. AWS Lambda security
  22. Penetration testing
Logging and Monitoring
8 Lessons
  1. Cloud monitoring tools
  2. Working with CloudWatch
  3. Working with Simple Storage Service (S3)
  4. Working with CloudTrail
  5. CloudTrail Cross-Account logging
  6. Working with CloudWatch
  7. AWS config and conformance packs
  8. VPC Flow logs and AWS Athena
Data Protection
14 Lessons
  1. S3 Overview
  2. IAM policies, bucket policies, and ACLs
  3. S3 encryption
  4. S3 pre-signed url
  5. S3 cross region replication
  6. Amazon S3 access tiering and Glacier
  7. KMS overview and operations
  8. AWS KMS key policies and grants
  9. Using KMS with S3 and EBS
  10. Using VPC endpoints with KMS
  11. Deleting customer KMS keys
  12. Cloud HSM
  13. EC2 encryption with key pairs
  14. Using certificate manager with CloudFront

Deleting Course Review

Are you sure? You can't restore this back

Course Access

This course is password protected. To access it please enter your password below:

Buy for group

AWS Certified Security – Specialty
No groups Found

You don't have any groups yet

Create a group and add group members. Sync Group(s)